Users Guide

An SED client-side registry setting is now available to congure the retry interval when the Server is unavailable to communicate with
the SED client. This registry setting can be used to prevent large numbers of clients from trying to contact the Server at once, thereby
compounding the problem. [CSF-24]
The issue of using Security Tools, Windows 8.1, and the GPO "Do Not Display Last Username", causing single sign-on to fail has been
resolved. [CSF-100]
Improvements have been made to make user login and start-up more reliable. [CSF-114, CSF-116]
Issues related to the "DellMgmtAgent" service failing to start or starting slowly have been resolved. These issues presented in the
Windows System Event Viewer under the Service Control Manager with a message similar to the following: "The DellMgmtAgent
service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion."
[CSF-116]
Enhancements have been made to the installer to ensure that the correct PBAAuthURI is maintained, even if the installation reboot
occurs before the authentication agent is upgraded. [CSF-123, CSF-125]
The installer now properly installs UEFI PBA upon detection of a UEFI BIOS. Legacy PBA is installed if a UEFI BIOS is not detected.
[CSF-148]
The issue of some special unicode characters, particularly German language umlaut characters, failing to be recognized during entry of
password recovery questions, is resolved. [DDPLP-202]
Previously, when installing the SED client or BitLocker Manager, if an external drive (or USB media) was connected during installation,
but disconnected prior to the post-installation restart, the computer would fail to reboot until the external drive was reconnected. This
issue is resolved. [MMW-693/CSF-15, CSF-14]
BitLocker Manager v8.5.1
Improvements have been made to make user login and start-up more reliable. [CSF-114, CSF-116]
Issues related to the "DellMgmtAgent" service failing to start or starting slowly have been resolved. These issues presented in the
Windows System Event Viewer under the Service Control Manager with a message similar to the following: "The DellMgmtAgent
service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion."
[CSF-116]
Excessive network trac caused by BitLocker Manager checking network and USB drive status has been resolved. [CSF-120]
When installing BitLocker Manager through the UI, all options to select the startup policy are now displayed properly. [CSF-204]
The issue of BitLocker Manager or computers running DDP|HCA contacting the Server too frequently during encryption and decryption
has been resolved. The Server is contacted only at encryption/decryption completion (or other regularly scheduled polling intervals).
[CSF-243]
Previously, when installing the SED client or BitLocker Manager, if an external drive (or USB media) was connected during installation,
but disconnected prior to the post-installation restart, the computer would fail to reboot until the external drive was reconnected. This
issue is resolved. [MMW-693/CSF-15, CSF-14]
New Features and Functionality v1.0
Dell Data Protection | Endpoint Security Suite includes the following components:
Threat Protection secures an enterprise against malware, phishing, and other common threats that target end users, systems, and data.
Critical and Major threat protection events are immediately sent to the DDP Server, with lower severity events sent at the next polling
interval. Threat Protection includes the following:
Malware Protection - Protects against viruses, spyware, unwanted programs, and other threats by automatically scanning items when
they are accessed or on demand, based on a schedule set by the administrator.
Client Firewall - Silently monitors communications between the computer and resources on the network and the Internet and intercepts
suspicious communications.
Web Protection - Allows administrators to control access to websites, based on safety rating, content category, or specic URLs.
The Encryption client provides data-centric, policy-based protection of data on any device or external media, allowing enterprises to
manage encryption policies for multiple endpoints and operating systems from the DDP Server. With the optional DDP | Hardware
Crypto Accelerator, the Encryption client ooads encryption processing to hardware for enhanced performance over software
encryption and supports the highest level of FIPS 140-2 protection commercially available for system disks.
Advanced Authentication fully integrates authentication options, including ngerprint, smart card, and contactless smart card readers,
with Dell ControlVault for secure hardware credential processing. For added security, the Dell FIPS 140-2 compliant TPM is available on
select Dell Latitude laptops and select Dell Precision mobile workstations.
The SED client provides centralized, secure management of local and remote self-encrypting drives across an organization and
seamlessly integrates with the other Endpoint Security Suite components. All policy, authentication, management tasks, and storage
32
Endpoint Security Suite Pro Technical Advisories v1.8
Technical Advisories